# yeah it's fugly for mirror in $( grep '^Site' list-full.html | sed -r -e 's%Site: (.+).+$%\1%g' | tr -d ' ' | tr ',' '\n' ); do echo "+-- $mirror: "; echo | timeout 1 openssl s_client -servername "$mirror" -connect "$mirror:443" 2>&1 | egrep '(Server public key|Cipher is|^issuer)'; done +-- ftp.am.debian.org: +-- mirrors.asnet.am: +-- debian.xfree.com.ar: +-- debian.unnoba.edu.ar: issuer=C = GB, ST = Greater Manchester, L = Salford, O = COMODO CA Limited, CN = COMODO RSA Organization Validation Secure Server CA New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 2048 bit +-- ftp.at.debian.org: +-- syncproxy4.eu.debian.org: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-AES128-GCM-SHA256 Server public key is 4096 bit +-- debian.lagis.at: +-- debian.sil.at: +-- ftp.debian.at: +-- debian.anexia.at: issuer=C = US, O = DigiCert Inc, OU = www.digicert.com, CN = RapidSSL TLS RSA CA G1 New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 2048 bit +-- debian.inode.at: +-- ftp.tu-graz.ac.at: issuer=C = NL, ST = Noord-Holland, L = Amsterdam, O = TERENA, CN = TERENA SSL High Assurance CA 3 New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 4096 bit +-- ftp.tugraz.at: issuer=C = NL, ST = Noord-Holland, L = Amsterdam, O = TERENA, CN = TERENA SSL High Assurance CA 3 New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 4096 bit +-- debian.mur.at: +-- algo.mur.at: issuer=C = NL, O = TERENA, CN = TERENA SSL CA New, TLSv1.2, Cipher is AES256-GCM-SHA384 Server public key is 2048 bit +-- spider.mur.at: +-- mirror.internex.at: issuer=C = US, O = DigiCert Inc, OU = www.digicert.com, CN = RapidSSL TLS RSA CA G1 New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 2048 bit +-- ftp.au.debian.org: +-- syncproxy.au.debian.org: +-- mirror.linux.org.au: +-- mirror.waia.asn.au: +-- debian.mirror.digitalpacific.com.au: +-- mirror.rackcentral.com.au: +-- debian.mirror.serversaustralia.com.au: +-- mirror.overthewire.com.au: +-- mirror.aarnet.edu.au: +-- mirror.intergrid.com.au: +-- mirror.amaze.com.au: New, (NONE), Cipher is (NONE) +-- mirror.datamossa.io: +-- mirror.launtel.net.au: +-- ftp.be.debian.org: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-AES128-GCM-SHA256 Server public key is 2048 bit +-- mirror.as35701.net: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-AES128-GCM-SHA256 Server public key is 2048 bit +-- ftp.belnet.be: issuer=C = NL, ST = Noord-Holland, L = Amsterdam, O = TERENA, CN = TERENA SSL High Assurance CA 3 New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 4096 bit +-- ftp.bg.debian.org: +-- debian.ludost.net: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 4096 bit +-- marla.ludost.net: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 4096 bit +-- debian.mobiltel.bg: +-- debian.ipacct.com: +-- debian.mnet.bg: +-- debian.telecoms.bg: +-- ftp.uni-sofia.bg: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 4096 bit +-- mirror.host.ag: +-- ftp.br.debian.org: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.3, Cipher is TLS_AES_256_GCM_SHA384 Server public key is 4096 bit +-- debian.c3sl.ufpr.br: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.3, Cipher is TLS_AES_256_GCM_SHA384 Server public key is 4096 bit +-- sft.if.usp.br: New, (NONE), Cipher is (NONE) +-- fma.if.usp.br: issuer=C = BR, ST = Rio de Janeiro, L = Rio de Janeiro, OU = Gerencia de Servicos (GSer), O = Rede Nacional de Ensino e Pesquisa - RNP, CN = ICPEdu New, TLSv1.2, Cipher is ECDHE-RSA-AES128-GCM-SHA256 Server public key is 2048 bit +-- debian.pop-sc.rnp.br: +-- mirror.pop-sc.rnp.br: +-- alcateia.ufscar.br: +-- mirror.ufscar.br: +-- repositorio.nti.ufal.br: +-- ftp.by.debian.org: +-- ftp.byfly.by: +-- mirror.datacenter.by: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 2048 bit +-- ftp.ca.debian.org: +-- syncproxy3.wna.debian.org: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-AES128-GCM-SHA256 Server public key is 4096 bit +-- archive-gretchaninov.debian.org: +-- debian.mirror.rafal.ca: +-- mirror.mountaincable.net: +-- ftp4.ca.debian.org: +-- debian.mirror.iweb.ca: +-- ftp2.ca.debian.org: +-- mirror.it.ubc.ca: +-- debian.mirror.globo.tech: +-- debian.mirror.gtcomm.net: +-- debian.mirror.estruxture.net: +-- mirror.csclub.uwaterloo.ca: issuer=C = BE, O = GlobalSign nv-sa, CN = GlobalSign Organization Validation CA - SHA256 - G2 New, TLSv1.2, Cipher is ECDHE-RSA-AES128-GCM-SHA256 Server public key is 2048 bit +-- debian.ca-west.mirror.fullhost.com: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-AES128-GCM-SHA256 Server public key is 2048 bit +-- ftp.ch.debian.org: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-AES128-GCM-SHA256 Server public key is 4096 bit +-- debian.ethz.ch: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-AES128-GCM-SHA256 Server public key is 4096 bit +-- mirror.sinavps.ch: issuer=C = BE, O = GlobalSign nv-sa, CN = AlphaSSL CA - SHA256 - G2 New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 2048 bit +-- mirror.iway.ch: +-- pkg.adfinis-sygroup.ch: issuer=C = GB, ST = Greater Manchester, L = Salford, O = COMODO CA Limited, CN = COMODO RSA Domain Validation Secure Server CA New, TLSv1.2, Cipher is ECDHE-RSA-AES128-GCM-SHA256 Server public key is 4096 bit +-- mirror.init7.net: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 2048 bit +-- ftp.cl.debian.org: New, (NONE), Cipher is (NONE) +-- debian.redlibre.cl: +-- mirror.insacom.cl: +-- debian.utalca.cl: +-- debian.netlinux.cl: +-- ftp2.cn.debian.org: issuer=C = GB, ST = Greater Manchester, L = Salford, O = COMODO CA Limited, CN = COMODO RSA Domain Validation Secure Server CA New, TLSv1.2, Cipher is ECDHE-RSA-CHACHA20-POLY1305 Server public key is 2048 bit +-- ftp.cn.debian.org: issuer=C = GB, ST = Greater Manchester, L = Salford, O = COMODO CA Limited, CN = COMODO RSA Domain Validation Secure Server CA New, TLSv1.2, Cipher is ECDHE-RSA-CHACHA20-POLY1305 Server public key is 2048 bit +-- mirrors.tuna.tsinghua.edu.cn: +-- mirrors.163.com: +-- mirrors.ustc.edu.cn: +-- ipv4.mirrors.ustc.edu.cn: +-- ipv6.mirrors.ustc.edu.cn: +-- rsync.mirrors.ustc.edu.cn: +-- mirrors.hust.edu.cn: +-- mirror.lzu.edu.cn: +-- mirrors.huaweicloud.com: +-- mirrors.ucr.ac.cr: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 4096 bit +-- espejos.ucr.ac.cr: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 4096 bit +-- ftp.cz.debian.org: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 4096 bit +-- ftp.debian.cz: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 4096 bit +-- www.debian.cz: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 4096 bit +-- mirror.dkm.cz: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 2048 bit +-- merlin.fit.vutbr.cz: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 4096 bit +-- debian.superhosting.cz: issuer=C = CZ, ST = Czech republic, L = Prague, O = Supernetwork, OU = Superhosting, CN = mirror-1.superhosting.cz New, TLSv1.2, Cipher is ECDHE-RSA-AES128-GCM-SHA256 Server public key is 2048 bit +-- debian.ignum.cz: +-- ucho.ignum.cz: +-- ftp.cvut.cz: +-- ftp.fs.cvut.cz: +-- debian.mirror.web4u.cz: +-- debian-cd.mirror.web4u.cz: +-- ftp.zcu.cz: issuer=C = NL, ST = Noord-Holland, L = Amsterdam, O = TERENA, CN = TERENA SSL CA 3 New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 2048 bit +-- ftp.sh.cvut.cz: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-AES128-GCM-SHA256 Server public key is 2048 bit +-- debian.sh.cvut.cz: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-AES128-GCM-SHA256 Server public key is 2048 bit +-- ftp.de.debian.org: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 4096 bit +-- ftp2.de.debian.org: issuer=C = DE, O = RWTH Aachen, CN = RWTH Aachen CA, emailAddress = ca@rwth-aachen.de New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 4096 bit +-- debian.inf.tu-dresden.de: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 4096 bit +-- ftp1.de.debian.org: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 4096 bit +-- ftp.halifax.rwth-aachen.de: issuer=C = DE, O = RWTH Aachen, CN = RWTH Aachen CA, emailAddress = ca@rwth-aachen.de New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 4096 bit +-- mirror.eu.oneandone.net: issuer=C = US, O = DigiCert Inc, OU = www.digicert.com, CN = GeoTrust RSA CA 2018 New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 2048 bit +-- mirror.1und1.de: issuer=C = US, O = DigiCert Inc, OU = www.digicert.com, CN = GeoTrust RSA CA 2018 New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 2048 bit +-- mirror.de.leaseweb.net: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 2048 bit +-- ftp.uni-kl.de: +-- debian.tu-bs.de: issuer=C = DE, O = Verein zur Foerderung eines Deutschen Forschungsnetzes e. V., OU = DFN-PKI, CN = DFN-Verein Global Issuing CA New, TLSv1.2, Cipher is ECDHE-RSA-AES128-GCM-SHA256 Server public key is 4096 bit +-- packages.hs-regensburg.de: issuer=C = DE, O = Fachhochschule Regensburg, CN = FH Regensburg CA, emailAddress = pki@fh-regensburg.de New, TLSv1.2, Cipher is ECDHE-RSA-AES128-GCM-SHA256 Server public key is 4096 bit +-- debian.mirror.lrz.de: +-- debian.mirror.iphh.net: +-- mirror.united-gameserver.de: +-- mirror.unitedcolo.de: +-- ftp.plusline.net: issuer=C = GB, ST = Greater Manchester, L = Salford, O = COMODO CA Limited, CN = COMODO RSA Domain Validation Secure Server CA New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 2048 bit +-- debian.charite.de: issuer=C = DE, O = Verein zur Foerderung eines Deutschen Forschungsnetzes e. V., OU = DFN-PKI, CN = DFN-Verein Global Issuing CA New, TLSv1.3, Cipher is TLS_AES_256_GCM_SHA384 Server public key is 2048 bit +-- mirror.netcologne.de: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-AES128-GCM-SHA256 Server public key is 4096 bit +-- debian.netcologne.de: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-AES128-GCM-SHA256 Server public key is 4096 bit +-- artfiles.org: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 2048 bit +-- debian.intergenia.de: +-- debian.server4you.de: +-- debian.vserver.de: +-- debian.plusserver.de: +-- ftp.hosteurope.de: +-- ftp.gwdg.de: issuer=C = DE, ST = NIEDERSACHSEN, L = GOETTINGEN, O = Gesellschaft fuer wissenschaftliche Datenverarbeitung, OU = GWDG, CN = GWDG CA, emailAddress = gwdg-ca@gwdg.de New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 2048 bit +-- ftp.uni-bayreuth.de: +-- btr0x2.rz.uni-bayreuth.de: +-- rsync.uni-bayreuth.de: +-- btr0qx.rz.uni-bayreuth.de: +-- ftp.tu-chemnitz.de: issuer=C = DE, O = Technische Universitaet Chemnitz, OU = Universitaetsrechenzentrum, CN = TU Chemnitz Certification Authority - TUC/URZ CA G3, emailAddress = ca@tu-chemnitz.de New, TLSv1.2, Cipher is ECDHE-RSA-AES128-GCM-SHA256 Server public key is 2048 bit +-- ftp.mpi-sb.mpg.de: issuer=C = DE, ST = Bayern, L = Muenchen, O = Max-Planck-Gesellschaft, CN = MPG CA - G02 New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 2048 bit +-- ftp.stw-bonn.de: +-- ftp-stud.hs-esslingen.de: issuer=C = DE, O = Verein zur Foerderung eines Deutschen Forschungsnetzes e. V., OU = DFN-PKI, CN = DFN-Verein Global Issuing CA New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 2048 bit +-- ftp.fau.de: issuer=C = DE, ST = Bayern, L = Erlangen, O = Universitaet Erlangen-Nuernberg, OU = RRZE, CN = FAU-CA, emailAddress = ca@rrze.uni-erlangen.de New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 4096 bit +-- ftp.uni-erlangen.de: issuer=C = DE, ST = Bayern, L = Erlangen, O = Universitaet Erlangen-Nuernberg, OU = RRZE, CN = FAU-CA, emailAddress = ca@rrze.uni-erlangen.de New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 4096 bit +-- debian.uni-duisburg-essen.de: +-- ftp.tu-clausthal.de: +-- pegasus.rz.tu-clausthal.de: +-- ftp.uni-stuttgart.de: +-- ftp6.uni-stuttgart.de: +-- mirror.rus.uni-stuttgart.de: +-- ftp.uni-mainz.de: issuer=C = DE, O = Verein zur Foerderung eines Deutschen Forschungsnetzes e. V., OU = DFN-PKI, CN = DFN-Verein Global Issuing CA New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 4096 bit +-- debian.mirror.net-d-sign.de: +-- mirror.daniel-jost.net: +-- pubmirror.plutex.de: issuer=C = GB, ST = Greater Manchester, L = Salford, O = COMODO CA Limited, CN = COMODO RSA Domain Validation Secure Server CA New, TLSv1.2, Cipher is ECDHE-RSA-AES128-GCM-SHA256 Server public key is 2048 bit +-- mirror.23media.de: +-- mirror.checkdomain.de: issuer=C = GB, ST = Greater Manchester, L = Salford, O = COMODO CA Limited, CN = COMODO RSA Domain Validation Secure Server CA New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 2048 bit +-- ftp.uni-hannover.de: +-- ftp.luis.uni-hannover.de: +-- debian-cd.repulsive.eu: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-AES128-GCM-SHA256 Server public key is 2048 bit +-- mirror.wtnet.de: issuer=C = GB, ST = Greater Manchester, L = Salford, O = COMODO CA Limited, CN = COMODO RSA Organization Validation Secure Server CA New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 2048 bit +-- ftp.dk.debian.org: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-AES128-GCM-SHA256 Server public key is 2048 bit +-- mirrors.dotsrc.org: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-AES128-GCM-SHA256 Server public key is 2048 bit +-- mirror.one.com: issuer=C = GB, ST = Greater Manchester, L = Salford, O = COMODO CA Limited, CN = COMODO RSA Domain Validation Secure Server CA New, TLSv1.2, Cipher is DHE-RSA-CHACHA20-POLY1305 Server public key is 2048 bit +-- mirror.asergo.com: +-- mirrors.rackhosting.com: +-- mirror.iodc.dk: +-- mirror.cedia.org.ec: issuer=C = US, ST = Arizona, L = Scottsdale, O = "GoDaddy.com, Inc.", OU = http://certs.godaddy.com/repository/, CN = Go Daddy Secure Certificate Authority - G2 New, TLSv1.2, Cipher is ECDHE-RSA-CHACHA20-POLY1305 Server public key is 2048 bit +-- mirror.uta.edu.ec: +-- mirror.ueb.edu.ec: +-- ftp.ee.debian.org: issuer=C = NL, ST = Noord-Holland, L = Amsterdam, O = TERENA, CN = TERENA SSL CA 3 New, TLSv1.2, Cipher is ECDHE-RSA-CHACHA20-POLY1305 Server public key is 4096 bit +-- ftp.eenet.ee: issuer=C = NL, ST = Noord-Holland, L = Amsterdam, O = TERENA, CN = TERENA SSL CA 3 New, TLSv1.2, Cipher is ECDHE-RSA-CHACHA20-POLY1305 Server public key is 4096 bit +-- ftp.es.debian.org: +-- ulises.hostalia.com: +-- ftp.gul.uc3m.es: +-- softlibre.unizar.es: +-- debian.redparra.com: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-AES128-GCM-SHA256 Server public key is 2048 bit +-- mirrors.redparra.com: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-AES128-GCM-SHA256 Server public key is 2048 bit +-- debian.grn.cat: +-- ftp.grn.es: +-- ftp.grn.cat: +-- ftp.udc.es: issuer=C = GB, ST = Greater Manchester, L = Salford, O = COMODO CA Limited, CN = COMODO RSA Domain Validation Secure Server CA New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 2048 bit +-- ftp.cica.es: issuer=C = NL, ST = Noord-Holland, L = Amsterdam, O = TERENA, CN = TERENA SSL High Assurance CA 3 New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 2048 bit +-- ftp.caliu.cat: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-AES128-GCM-SHA256 Server public key is 2048 bit +-- debian.redimadrid.es: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 4096 bit +-- debian.uvigo.es: issuer=C = NL, ST = Noord-Holland, L = Amsterdam, O = TERENA, CN = TERENA SSL CA 3 New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 2048 bit +-- www.nic.funet.fi: +-- ftp.funet.fi: +-- ftp.fr.debian.org: +-- debian.proxad.net: +-- ftp.ec-m.fr: +-- deb-mir1.naitways.net: +-- debian.univ-lorraine.fr: +-- debian.mines.inpl-nancy.fr: +-- ftp.u-picardie.fr: +-- ftp.u-strasbg.fr: issuer=C = NL, ST = Noord-Holland, L = Amsterdam, O = TERENA, CN = TERENA SSL CA 3 New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 2048 bit +-- mirror.plusserver.com: issuer=C = US, O = DigiCert Inc, OU = www.digicert.com, CN = GeoTrust TLS RSA CA G1 New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 2048 bit +-- debian.mirror.ate.info: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-AES128-GCM-SHA256 Server public key is 2048 bit +-- debian.univ-tlse2.fr: +-- ftp.rezopole.net: +-- ftp.crifo.org: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.3, Cipher is TLS_AES_256_GCM_SHA384 Server public key is 4096 bit +-- debian.univ-reims.fr: +-- ftp.univ-pau.fr: +-- mirrors.ircam.fr: +-- ftp.crihan.fr: +-- debian.mirrors.ovh.net: issuer=C = BE, O = GlobalSign nv-sa, CN = AlphaSSL CA - SHA256 - G2 New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 2048 bit +-- ftp.lip6.fr: issuer=C = NL, ST = Noord-Holland, L = Amsterdam, O = TERENA, CN = TERENA SSL CA 3 New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 2048 bit +-- ftp.iut-bm.univ-fcomte.fr: +-- debian.iut-bm.univ-fcomte.fr: +-- debian.polytech-lille.fr: +-- ftp.eudil.fr: +-- ftp.uk.debian.org: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-AES128-GCM-SHA256 Server public key is 4096 bit +-- syncproxy3.eu.debian.org: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-AES128-GCM-SHA256 Server public key is 4096 bit +-- archive-sibelius.debian.org: +-- free.hands.com: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-AES128-GCM-SHA256 Server public key is 4096 bit +-- debian.hands.com: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-AES128-GCM-SHA256 Server public key is 4096 bit +-- open.hands.com: +-- ukdebian.mirror.anlx.net: +-- mirrors.melbourne.co.uk: +-- mirror.man.bytemark.co.uk: issuer=C = GB, ST = Greater Manchester, L = Salford, O = COMODO CA Limited, CN = COMODO RSA Domain Validation Secure Server CA New, TLSv1.2, Cipher is ECDHE-RSA-AES128-GCM-SHA256 Server public key is 2048 bit +-- mirror.yrk.bytemark.co.uk: issuer=C = GB, ST = Greater Manchester, L = Salford, O = COMODO CA Limited, CN = COMODO RSA Domain Validation Secure Server CA New, TLSv1.2, Cipher is ECDHE-RSA-AES128-GCM-SHA256 Server public key is 2048 bit +-- mirror.bytemark.co.uk: issuer=C = GB, ST = Greater Manchester, L = Salford, O = COMODO CA Limited, CN = COMODO RSA Domain Validation Secure Server CA New, TLSv1.2, Cipher is ECDHE-RSA-AES128-GCM-SHA256 Server public key is 2048 bit +-- mirror.positive-internet.com: issuer=C = GB, ST = Greater Manchester, L = Salford, O = COMODO CA Limited, CN = COMODO SSL CA New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 2048 bit +-- mirror.sucs.swan.ac.uk: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 2048 bit +-- mirror.sucs.org: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 2048 bit +-- mirror.lchost.net: +-- debian.mirror.uk.sargasso.net: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 4096 bit +-- mirror.mythic-beasts.com: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 4096 bit +-- debian.serverspace.co.uk: +-- mirror.vorboss.net: issuer=C = GB, ST = Greater Manchester, L = Salford, O = COMODO CA Limited, CN = COMODO RSA Domain Validation Secure Server CA New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 2048 bit +-- mirror.sov.uk.goscomb.net: +-- debian-iso.mirror.anlx.net: +-- mirror.ox.ac.uk: +-- ftp.ticklers.org: +-- mirrorservice.org: issuer=C = BM, O = QuoVadis Limited, CN = QuoVadis Global SSL ICA G3 New, TLSv1.2, Cipher is ECDHE-RSA-AES128-GCM-SHA256 Server public key is 2048 bit +-- ftp.mirrorservice.org: issuer=C = BM, O = QuoVadis Limited, CN = QuoVadis Global SSL ICA G3 New, TLSv1.2, Cipher is ECDHE-RSA-AES128-GCM-SHA256 Server public key is 2048 bit +-- rsync.mirrorservice.org: issuer=C = BM, O = QuoVadis Limited, CN = QuoVadis Global SSL ICA G3 New, TLSv1.2, Cipher is ECDHE-RSA-AES128-GCM-SHA256 Server public key is 2048 bit +-- www.mirrorservice.org: issuer=C = BM, O = QuoVadis Limited, CN = QuoVadis Global SSL ICA G3 New, TLSv1.2, Cipher is ECDHE-RSA-AES128-GCM-SHA256 Server public key is 2048 bit +-- mirror.sax.uk.as61049.net: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-AES128-GCM-SHA256 Server public key is 2048 bit +-- mirrors.m247.com: +-- debian.mirrors.uk2.net: +-- mirrors.coreix.net: +-- debian.grena.ge: issuer=C = US, O = DigiCert Inc, CN = DigiCert SHA2 Secure Server CA New, TLSv1.2, Cipher is ECDHE-RSA-AES128-GCM-SHA256 Server public key is 2048 bit +-- ftp.gr.debian.org: +-- debian.noc.ntua.gr: +-- ftp.ntua.gr: +-- debian.otenet.gr: +-- ftp.hk.debian.org: issuer=C = GB, ST = Greater Manchester, L = Salford, O = COMODO CA Limited, CN = COMODO RSA Domain Validation Secure Server CA New, TLSv1.2, Cipher is ECDHE-RSA-CHACHA20-POLY1305 Server public key is 2048 bit +-- mirror.xtom.com.hk: issuer=C = GB, ST = Greater Manchester, L = Salford, O = COMODO CA Limited, CN = COMODO RSA Domain Validation Secure Server CA New, TLSv1.2, Cipher is ECDHE-RSA-CHACHA20-POLY1305 Server public key is 2048 bit +-- ftp.debian.com.hk: +-- openbsd.hk: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-AES128-GCM-SHA256 Server public key is 2048 bit +-- ftp.hr.debian.org: +-- syncproxy.eu.debian.org: +-- debian.carnet.hr: +-- arrakis.carnet.hr: +-- ftp.carnet.hr: +-- debian.iskon.hr: New, (NONE), Cipher is (NONE) +-- ftp.hu.debian.org: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 2048 bit +-- ftp.fsn.hu: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 2048 bit +-- ftp.bme.hu: +-- ftp.kfki.hu: +-- mirror.poliwangi.ac.id: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 2048 bit +-- kartolo.sby.datautama.net.id: +-- kebo.pens.ac.id: +-- mirror.isoc.org.il: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 2048 bit +-- debian.co.il: +-- debian.interhost.co.il: +-- debianmirror.nkn.in: +-- mirror.cse.iitk.ac.in: +-- ftp.iitm.ac.in: +-- debian.asis.io: +-- debian.parspack.com: +-- mirror.aminidc.com: +-- ftp.is.debian.org: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 2048 bit +-- debian.simnet.is: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 2048 bit +-- ftp.it.debian.org: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 2048 bit +-- mirror.crazynetwork.it: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-AES128-GCM-SHA256 Server public key is 4096 bit +-- debian.dynamica.it: issuer=C = US, O = DigiCert Inc, OU = www.digicert.com, CN = Thawte RSA CA 2018 New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 2048 bit +-- mirror.units.it: issuer=C = NL, ST = Noord-Holland, L = Amsterdam, O = TERENA, CN = TERENA SSL CA 3 New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 2048 bit +-- debian.mirror.garr.it: issuer=C = NL, ST = Noord-Holland, L = Amsterdam, O = TERENA, CN = TERENA SSL CA 3 New, TLSv1.2, Cipher is ECDHE-RSA-CHACHA20-POLY1305 Server public key is 2048 bit +-- giano.com.dist.unige.it: +-- debian.connesi.it: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 2048 bit +-- ftp.linux.it: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 2048 bit +-- ftp.jp.debian.org: +-- cdn.debian.or.jp: issuer=C = US, O = DigiCert Inc, OU = www.digicert.com, CN = RapidSSL RSA CA 2018 New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 2048 bit +-- hanzubon.jp: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.3, Cipher is TLS_AES_256_GCM_SHA384 Server public key is 2048 bit +-- air.hanzubon.jp: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.3, Cipher is TLS_AES_256_GCM_SHA384 Server public key is 2048 bit +-- dennou-k.gfd-dennou.org: +-- dennou-k.gaia.h.kyoto-u.ac.jp: +-- dennou-q.gfd-dennou.org: +-- dennou-q.geo.kyushu-u.ac.jp: +-- ftp.nara.wide.ad.jp: +-- ftp.aist-nara.ac.jp: +-- debian-mirror.sakura.ne.jp: +-- ftp.jaist.ac.jp: issuer=C = JP, O = National Institute of Informatics, CN = NII Open Domain CA - G5 New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 2048 bit +-- ftp.riken.jp: issuer=C = --, ST = SomeState, L = SomeCity, O = SomeOrganization, OU = SomeOrganizationalUnit, CN = ftp.riken.jp, emailAddress = root@ftp.riken.jp New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 2048 bit +-- ftp.riken.go.jp: +-- ftp.kddilabs.jp: +-- ftp.ne.jp: +-- ftp.yz.yamagata-u.ac.jp: +-- debian.mirror.ac.ke: +-- debian.mirror.liquidtelecom.com: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-CHACHA20-POLY1305 Server public key is 2048 bit +-- ftp.kr.debian.org: +-- ftp.kaist.ac.kr: +-- ftp.lanet.kr: +-- ftp.harukasan.org: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 2048 bit +-- iori.harukasan.org: +-- mirror.ps.kz: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 2048 bit +-- mirror.hoster.kz: issuer=C = US, O = DigiCert Inc, OU = www.digicert.com, CN = RapidSSL RSA CA 2018 New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 2048 bit +-- ftp.lt.debian.org: +-- debian.mirror.vu.lt: +-- e450.vu.lt: +-- mirror.litnet.lt: +-- ftp.litnet.lt: +-- debina.ktu.lt: +-- debian.balt.net: +-- mirror.vpsnet.com: +-- debian.mirror.root.lu: +-- debian.linux.edu.lv: +-- debian.koyanet.lv: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-AES128-GCM-SHA256 Server public key is 2048 bit +-- koyanet.lv: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-AES128-GCM-SHA256 Server public key is 2048 bit +-- ftp.koyanet.lv: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-AES128-GCM-SHA256 Server public key is 2048 bit +-- saule.koyanet.lv: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-AES128-GCM-SHA256 Server public key is 2048 bit +-- ftp.md.debian.org: +-- mirror.as43289.net: +-- mirror.onevip.mk: +-- ftp.mx.debian.org: +-- mmc.geofisica.unam.mx: +-- ftp.nc.debian.org: +-- debian.nautile.nc: +-- debian.lagoon.nc: +-- mirror.lagoon.nc: +-- ftp.nl.debian.org: +-- syncproxy2.eu.debian.org: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-AES128-GCM-SHA256 Server public key is 4096 bit +-- archive-klecker.debian.org: +-- debian.snt.utwente.nl: +-- mirror.nl.leaseweb.net: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 2048 bit +-- debmirror.tuxis.nl: issuer=C = GB, ST = Greater Manchester, L = Salford, O = COMODO CA Limited, CN = COMODO RSA Domain Validation Secure Server CA New, TLSv1.2, Cipher is ECDHE-RSA-AES128-GCM-SHA256 Server public key is 2048 bit +-- mirror.i3d.net: issuer=C = GB, ST = Greater Manchester, L = Salford, O = COMODO CA Limited, CN = COMODO RSA Domain Validation Secure Server CA New, TLSv1.0, Cipher is ECDHE-RSA-AES256-SHA Server public key is 2048 bit +-- debian.mirror.cambrium.nl: +-- mirror.proserve.nl: +-- ftp.debian.nl: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 4096 bit +-- download.xs4all.nl: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 4096 bit +-- ftp.nluug.nl: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 4096 bit +-- ftp.surfnet.nl: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 4096 bit +-- mirror.dataone.nl: +-- mirror.nforce.com: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-AES128-GCM-SHA256 Server public key is 2048 bit +-- mirror.duocast.net: +-- mirror.novg.net: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.3, Cipher is TLS_AES_256_GCM_SHA384 Server public key is 256 bit +-- mirror.nl.datapacket.com: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 2048 bit +-- mirror.neostrada.nl: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 2048 bit +-- mirror.seedvps.com: +-- mirror.vpgrp.io: issuer=C = FR, ST = Paris, L = Paris, O = Gandi, CN = Gandi Standard SSL CA 2 New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 2048 bit +-- mirror.serverius.net: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 2048 bit +-- ftp.no.debian.org: +-- ftp.uio.no: +-- ftp.uninett.no: +-- ftp.nz.debian.org: +-- ftp.citylink.co.nz: +-- mirror.fsmg.org.nz: +-- repository.linux.pf: +-- mirror.pregi.net: +-- mirror.rise.ph: +-- ftp.pl.debian.org: +-- ftp.task.gda.pl: +-- ftp.agh.edu.pl: +-- ftp.man.poznan.pl: +-- ftp.ps.pl: issuer=C = NL, ST = Noord-Holland, L = Amsterdam, O = TERENA, CN = TERENA SSL High Assurance CA 3 New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 4096 bit +-- ftp.tuniv.szczecin.pl: issuer=C = NL, ST = Noord-Holland, L = Amsterdam, O = TERENA, CN = TERENA SSL High Assurance CA 3 New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 4096 bit +-- ftp.icm.edu.pl: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is DHE-RSA-AES256-GCM-SHA384 Server public key is 4096 bit +-- sunsite.icm.edu.pl: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is DHE-RSA-AES256-GCM-SHA384 Server public key is 4096 bit +-- debian.inhost.pro: +-- ftp.pt.debian.org: +-- debian.uevora.pt: +-- ftp.uevora.pt: +-- ftp.rnl.tecnico.ulisboa.pt: issuer=C = NL, ST = Noord-Holland, L = Amsterdam, O = TERENA, CN = TERENA SSL CA 3 New, TLSv1.2, Cipher is ECDHE-RSA-AES128-GCM-SHA256 Server public key is 4096 bit +-- mirrors.up.pt: issuer=C = NL, ST = Noord-Holland, L = Amsterdam, O = TERENA, CN = TERENA SSL CA 3 New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 4096 bit +-- ftp.eq.uc.pt: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.3, Cipher is TLS_AES_256_GCM_SHA384 Server public key is 2048 bit +-- depot-debian.univ-reunion.fr: +-- ftp.ro.debian.org: +-- ftp.upcnet.ro: +-- ftp.astral.ro: +-- mirrors.pidginhost.com: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-AES128-GCM-SHA256 Server public key is 2048 bit +-- mirrors.xservers.ro: issuer=C = GB, ST = Greater Manchester, L = Salford, O = COMODO CA Limited, CN = COMODO RSA Domain Validation Secure Server CA New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 2048 bit +-- mirrors.nxthost.com: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 2048 bit +-- mirrors.nav.ro: issuer=C = GB, ST = Greater Manchester, L = Salford, O = COMODO CA Limited, CN = COMODO RSA Domain Validation Secure Server CA New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 2048 bit +-- mirror.pmf.kg.ac.rs: issuer=CN = mirror New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 2048 bit +-- debian.petarmaric.com: +-- ftp.ru.debian.org: +-- mirror.mephi.ru: +-- mirror.corbina.net: +-- ftp.corbina.net: issuer=C = US, O = DigiCert Inc, OU = www.digicert.com, CN = Thawte RSA CA 2018 New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 2048 bit +-- mirror2.corbina.ru: issuer=C = US, O = DigiCert Inc, OU = www.digicert.com, CN = Thawte RSA CA 2018 New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 2048 bit +-- ftp.psn.ru: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 4096 bit +-- server.psn.ru: +-- mirror.truenetwork.ru: +-- mirrors.powernet.com.ru: +-- ftp.se.debian.org: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-AES128-GCM-SHA256 Server public key is 2048 bit +-- ftp.fi.debian.org: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-AES128-GCM-SHA256 Server public key is 2048 bit +-- cdimage.debian.org: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-AES128-GCM-SHA256 Server public key is 2048 bit +-- ftp.acc.umu.se: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-AES128-GCM-SHA256 Server public key is 2048 bit +-- churchill.acc.umu.se: +-- debian.lth.se: New, (NONE), Cipher is (NONE) +-- ftp.ddg.lth.se: New, (NONE), Cipher is (NONE) +-- mirrors.glesys.net: +-- debian.mirror.su.se: +-- mirror.zetup.net: issuer=C = BE, O = GlobalSign nv-sa, CN = AlphaSSL CA - SHA256 - G2 New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 2048 bit +-- mirror.linux.pizza: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-AES128-GCM-SHA256 Server public key is 2048 bit +-- ftp.sg.debian.org: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-CHACHA20-POLY1305 Server public key is 2048 bit +-- mirror.0x.sg: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-CHACHA20-POLY1305 Server public key is 2048 bit +-- ftp.si.debian.org: +-- ftp.arnes.si: issuer=C = NL, ST = Noord-Holland, L = Amsterdam, O = TERENA, CN = TERENA SSL CA 3 New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 2048 bit +-- ftp.sk.debian.org: +-- ftp.debian.sk: +-- debian.sk: +-- mirrors.gts.sk: +-- ftp.antik.sk: New, (NONE), Cipher is (NONE) +-- ftp.sv.debian.org: issuer=C = NA, ST = NA, L = Ankh Morpork, O = Debian SMTP, OU = Debian SMTP CA, CN = Debian SMTP CA, emailAddress = hostmaster@puppet.debian.org New, TLSv1.2, Cipher is ECDHE-RSA-AES128-GCM-SHA256 Server public key is 2048 bit +-- debian.salud.gob.sv: +-- mirror.salud.gob.sv: +-- debian.ues.edu.sv: +-- linux.ues.edu.sv: +-- mirror.kku.ac.th: +-- mirror.applebred.net: +-- ftp.debianclub.org: +-- ftp.tr.debian.org: +-- ftp.linux.org.tr: +-- debian.gnu.gen.tr: +-- windu.bcc.bilkent.edu.tr: +-- ftp.metu.edu.tr: issuer=C = GB, ST = Greater Manchester, L = Salford, O = COMODO CA Limited, CN = COMODO RSA Organization Validation Secure Server CA New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 2048 bit +-- ftp.tw.debian.org: +-- ftp.tku.edu.tw: +-- ftp.ntou.edu.tw: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 2048 bit +-- debian.cs.nctu.edu.tw: +-- ftp.ncnu.edu.tw: +-- ftp4.ncnu.edu.tw: +-- opensource.nchc.org.tw: +-- os.nchc.org.tw: +-- debian.csie.ntu.edu.tw: +-- debian.volia.net: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.3, Cipher is TLS_AES_256_GCM_SHA384 Server public key is 2048 bit +-- mirror.volia.net: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.3, Cipher is TLS_AES_256_GCM_SHA384 Server public key is 2048 bit +-- mirror.mirohost.net: +-- deb.mirohost.net: +-- debian.org.ua: +-- ftp.us.debian.org: issuer=C = US, ST = MI, L = Ann Arbor, O = Internet2, OU = InCommon, CN = InCommon RSA Server CA New, TLSv1.2, Cipher is ECDHE-RSA-AES128-GCM-SHA256 Server public key is 2048 bit +-- http.us.debian.org: issuer=C = US, ST = MI, L = Ann Arbor, O = Internet2, OU = InCommon, CN = InCommon RSA Server CA New, TLSv1.2, Cipher is ECDHE-RSA-AES128-GCM-SHA256 Server public key is 2048 bit +-- syncproxy2.wna.debian.org: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-AES128-GCM-SHA256 Server public key is 4096 bit +-- syncproxy.cna.debian.org: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-AES128-GCM-SHA256 Server public key is 4096 bit +-- debian-archive.trafficmanager.net: +-- rsync.osuosl.org: issuer=C = US, ST = MI, L = Ann Arbor, O = Internet2, OU = InCommon, CN = InCommon RSA Server CA New, TLSv1.2, Cipher is ECDHE-RSA-AES128-GCM-SHA256 Server public key is 2048 bit +-- debian.csail.mit.edu: +-- debian.lcs.mit.edu: +-- debian.osuosl.org: issuer=C = US, ST = MI, L = Ann Arbor, O = Internet2, OU = InCommon, CN = InCommon RSA Server CA New, TLSv1.2, Cipher is ECDHE-RSA-AES128-GCM-SHA256 Server public key is 2048 bit +-- debian.oregonstate.edu: issuer=C = US, ST = MI, L = Ann Arbor, O = Internet2, OU = InCommon, CN = InCommon RSA Server CA New, TLSv1.2, Cipher is ECDHE-RSA-AES128-GCM-SHA256 Server public key is 2048 bit +-- ftp.oregonstate.edu: issuer=C = US, ST = MI, L = Ann Arbor, O = Internet2, OU = InCommon, CN = InCommon RSA Server CA New, TLSv1.2, Cipher is ECDHE-RSA-AES128-GCM-SHA256 Server public key is 2048 bit +-- ftp.osuosl.org: issuer=C = US, ST = MI, L = Ann Arbor, O = Internet2, OU = InCommon, CN = InCommon RSA Server CA New, TLSv1.2, Cipher is ECDHE-RSA-AES128-GCM-SHA256 Server public key is 2048 bit +-- mirrors.lug.mtu.edu: issuer=C = US, ST = MI, L = Ann Arbor, O = Internet2, OU = InCommon, CN = InCommon RSA Server CA New, TLSv1.2, Cipher is ECDHE-RSA-AES128-GCM-SHA256 Server public key is 2048 bit +-- debian.cse.msu.edu: +-- debian.cc.lehigh.edu: +-- mirror.us.oneandone.net: issuer=C = US, O = DigiCert Inc, OU = www.digicert.com, CN = GeoTrust RSA CA 2018 New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 2048 bit +-- mirror.1and1.com: issuer=C = US, O = DigiCert Inc, OU = www.digicert.com, CN = GeoTrust RSA CA 2018 New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 2048 bit +-- debian.gtisc.gatech.edu: +-- mirror.hmc.edu: issuer=C = US, ST = MI, L = Ann Arbor, O = Internet2, OU = InCommon, CN = InCommon RSA Server CA New, SSLv3, Cipher is DHE-RSA-AES128-SHA Server public key is 2048 bit +-- worblehat.math.hmc.edu: issuer=C = US, ST = MI, L = Ann Arbor, O = Internet2, OU = InCommon, CN = InCommon RSA Server CA New, SSLv3, Cipher is DHE-RSA-AES128-SHA Server public key is 2048 bit +-- mirror.cc.columbia.edu: +-- mirrors.bloomu.edu: issuer=C = US, O = DigiCert Inc, CN = DigiCert SHA2 Secure Server CA New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 2048 bit +-- mirrors.cat.pdx.edu: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-AES128-GCM-SHA256 Server public key is 4096 bit +-- mirrors.namecheap.com: issuer=C = GB, ST = Greater Manchester, L = Salford, O = COMODO CA Limited, CN = COMODO RSA Domain Validation Secure Server CA New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 2048 bit +-- mirror01.phx.namecheap.com: +-- mirrors.ocf.berkeley.edu: +-- debian.mirror.constant.com: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-AES128-GCM-SHA256 Server public key is 2048 bit +-- mirrors.advancedhosters.com: +-- mirror.cogentco.com: +-- mirrors.syringanetworks.net: issuer=C = GB, ST = Greater Manchester, L = Salford, O = COMODO CA Limited, CN = COMODO RSA Domain Validation Secure Server CA New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 2048 bit +-- mirrors.gigenet.com: issuer=C = BE, O = GlobalSign nv-sa, CN = GlobalSign Domain Validation CA - SHA256 - G2 New, TLSv1.2, Cipher is ECDHE-RSA-AES128-GCM-SHA256 Server public key is 2048 bit +-- mirror.us.leaseweb.net: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 2048 bit +-- debian.ec.as6453.net: +-- mirrors.accretive-networks.net: New, (NONE), Cipher is (NONE) +-- debian.cs.binghamton.edu: +-- ftp.utexas.edu: +-- ftp.the.net: +-- mirror.steadfast.net: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-AES128-GCM-SHA256 Server public key is 4096 bit +-- debian.mirrors.pair.com: New, (NONE), Cipher is (NONE) +-- archive.kernel.org: issuer=C = FR, ST = Paris, L = Paris, O = Gandi, CN = Gandi Standard SSL CA 2 New, TLSv1.2, Cipher is ECDHE-RSA-AES128-GCM-SHA256 Server public key is 3072 bit +-- mirrors.xmission.com: issuer=C = US, O = DigiCert Inc, CN = DigiCert SHA2 Secure Server CA New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 2048 bit +-- mirror.xmission.com: issuer=C = US, O = DigiCert Inc, CN = DigiCert SHA2 Secure Server CA New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 2048 bit +-- mirror.keystealth.org: +-- debian.uchicago.edu: +-- linux.uchicago.edu: +-- www.gtlib.gatech.edu: +-- ftp.gtlib.gatech.edu: +-- zaphod.gtlib.gatech.edu: +-- mirror.math.princeton.edu: issuer=C = US, ST = MI, L = Ann Arbor, O = Internet2, OU = InCommon, CN = InCommon RSA Server CA New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 2048 bit +-- mirror.cs.uwm.edu: +-- mirrors.wikimedia.org: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-CHACHA20-POLY1305 Server public key is 2048 bit +-- mirror.sjc02.svwh.net: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 2048 bit +-- mirrors.edge.kernel.org: issuer=C = GB, ST = Greater Manchester, L = Salford, O = COMODO CA Limited, CN = COMODO RSA Domain Validation Secure Server CA New, TLSv1.2, Cipher is ECDHE-RSA-AES128-GCM-SHA256 Server public key is 2048 bit +-- repo.ialab.dsu.edu: +-- ftp.naz.com: issuer=C = BE, O = GlobalSign nv-sa, CN = AlphaSSL CA - SHA256 - G2 New, TLSv1.2, Cipher is ECDHE-RSA-AES128-GCM-SHA256 Server public key is 2048 bit +-- mirror.siena.edu: +-- repo.cure.edu.uy: +-- repositorio.cure.edu.uy: +-- debian.xtdv.net: issuer=C = IL, O = StartCom Ltd., OU = StartCom Certification Authority, CN = StartCom Class 2 IV Server CA New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 4096 bit +-- debian.saix.net: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 2048 bit +-- ftp.saix.net: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 2048 bit +-- www.ftp.saix.net: issuer=C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3 New, TLSv1.2, Cipher is ECDHE-RSA-AES256-GCM-SHA384 Server public key is 2048 bit +-- debian.mirror.ac.za: +-- ftp.is.co.za: